Added: 5 years ago
From: cheeseyman12
Views: 36,248
Sort by time | Sort by thread (beta)

Link to this comment:

Share to:

All Comments (29)

Sign In or Sign Up now to post a comment!
  • Was there a airplane landing in the background? Start at 1:27 XD

  • thats pretty funny .. but most guestbooks only allow p

  • Or you can make a cookie catcher and take their cookies and get their passwords

  • I love hacking site guestbooks. you put alerts in saying redirecting to a secure site and redirect it to google using js. then no more guestbook for them hehe

  • the resolution is so bad, couldn't see a thing that was typed...

  • This is so old. There's hardly any sites vulnerable to basic HTML injections anymore.

  • Its still a good thing to learn the principles of

  • quick question, what injection are they using now?

  • @Freakingpanda1 You'd be surprised at the amount of sites still volunerable to HTML, PHP, and Javascript injections - not as much as there used to be [thankfully] but it is still possible for a script kiddie to inject a line of javascript redirecting a guestbook viewer to goatse(.)cx for example - people are still careless, think it can't happen to them.

  • That's a good start, but it's not easy to find sites like this nowadays.

    The site might be hosted on a free host, so you know the webmaster is a beginner.

    There's no funny on it.

  • killerguppy101

  • THX cheeze! couldnt understand it from the article at HBH definately helpful!

  • NONONONONO

    GO ENIGMA!!!!!!!!11

  • WHOO! ROCK ON Mr_Cheese! HBH KICKS ASS!

    EVERYONE JOIN IT NOW!!

    -Night_Stalker

  • where'd you learn then

  • can u plz reply to this or message me some html that i can use and tell me what it does, thx a load man

  • Very good! I had to check my guestbook! :P

    Although, since I use PHP, I had the mysql_escape_string, so I got javascript=\"bla bla\", aswell as javascript=\'bla bla\'.

    So any HTML without parameters works in my guestbook, but it's not vulnurable for hacks!

  • I wonder what are you typing in... :\

  • Nice:p i think im going to have som fun

  • wots tht websyt wiv the gestbook on

  • <?php comments_popup_script(400, 500); ?>

    Your standard popup javascript

  • yo nice fucking little tut hope you have more...

    -DaBu

  • ">

    '>

    '}; :D just some escapes there that might help on some things :D.

  • What website is that? (DotHacker0 asking)

  • hellboundhacker

  • YO! Nice job Mr. Cheese!

    You are the one of the best on HBH.

    Khybar~

Loading...
Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more